Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 02:59:17.026 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49632 10 6452 1 2025-09-20 02:59:23.987 00:00:10.371 TCP 23.104.0.1:47440 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:00:17.236 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45334 10 6452 1 2025-09-20 03:00:24.394 00:00:10.876 TCP 23.104.0.1:43530 -> 1.101.0.1:3000 11 1507 1 2025-09-20 02:56:30.870 00:05:01.337 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:00:43.616 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:00:43.367 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:01:17.448 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:44806 10 6452 1 2025-09-20 03:01:25.311 00:00:10.363 TCP 23.104.0.1:45126 -> 1.101.0.1:3000 11 1507 1 2025-09-20 02:57:30.871 00:05:01.332 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:02:17.620 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:58342 10 6452 1 2025-09-20 03:02:25.714 00:00:10.377 TCP 23.104.0.1:48592 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:03:17.796 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52244 10 6452 1 2025-09-20 03:03:26.132 00:00:10.372 TCP 23.104.0.1:43788 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:04:17.966 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48338 10 6452 1 2025-09-20 03:04:26.553 00:00:10.371 TCP 23.104.0.1:39020 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:05:18.187 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44662 10 6452 1 2025-09-20 03:05:26.957 00:00:10.370 TCP 23.104.0.1:38704 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:05:44.043 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:05:43.939 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:06:18.399 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59240 10 6452 1 2025-09-20 03:02:30.871 00:05:01.337 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:06:27.369 00:00:10.364 TCP 23.104.0.1:43482 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:07:18.617 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55332 10 6452 1 2025-09-20 03:03:30.872 00:05:01.333 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:07:27.773 00:00:10.373 TCP 23.104.0.1:60896 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:08:18.831 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34692 10 6452 1 2025-09-20 03:08:28.184 00:00:10.369 TCP 23.104.0.1:36052 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:09:19.076 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35252 10 6452 1 2025-09-20 03:09:28.589 00:00:10.324 TCP 23.104.0.1:51502 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:10:19.288 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:52902 10 6452 1 2025-09-20 03:10:28.953 00:00:10.372 TCP 23.104.0.1:54766 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:10:43.531 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:10:43.757 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:11:19.493 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47008 10 6452 1 2025-09-20 03:11:29.361 00:00:10.324 TCP 23.104.0.1:36976 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:12:19.703 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:46798 10 6452 1 2025-09-20 03:08:30.871 00:05:01.338 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:12:29.724 00:00:10.372 TCP 23.104.0.1:59716 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:13:19.942 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:53646 10 6452 1 2025-09-20 03:09:30.875 00:05:01.332 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:13:30.135 00:00:10.365 TCP 23.104.0.1:58066 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:14:20.135 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:36662 10 6452 1 2025-09-20 03:14:30.537 00:00:10.364 TCP 23.104.0.1:48208 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:15:20.337 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:55204 10 6452 1 2025-09-20 03:15:30.937 00:00:10.364 TCP 23.104.0.1:58250 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:15:43.903 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:15:43.959 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:16:20.527 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:51102 10 6452 1 2025-09-20 03:16:31.341 00:00:10.362 TCP 23.104.0.1:50984 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:17:20.698 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51600 10 6452 1 2025-09-20 03:17:31.747 00:00:10.364 TCP 23.104.0.1:49632 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:18:20.915 00:00:10.668 TCP 1.101.0.1:3000 -> 22.102.0.1:49056 10 6452 1 2025-09-20 03:14:30.874 00:05:01.342 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:18:32.151 00:00:10.359 TCP 23.104.0.1:45792 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:19:21.617 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:48994 10 6452 1 2025-09-20 03:15:30.876 00:05:01.337 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:19:32.552 00:00:10.368 TCP 23.104.0.1:42902 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:20:21.790 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33176 10 6452 1 2025-09-20 03:20:43.981 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:20:43.867 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:20:32.962 00:00:10.368 TCP 23.104.0.1:55740 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:21:22.005 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46856 10 6452 1 2025-09-20 03:21:33.376 00:00:10.329 TCP 23.104.0.1:51938 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:22:22.220 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:53370 10 6452 1 2025-09-20 03:22:33.742 00:00:10.364 TCP 23.104.0.1:42096 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:23:22.388 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:48320 10 6452 1 2025-09-20 03:23:34.144 00:00:10.371 TCP 23.104.0.1:36442 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:24:22.558 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48932 10 6452 1 2025-09-20 03:20:30.874 00:05:01.343 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:24:34.552 00:00:10.336 TCP 23.104.0.1:40396 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:25:22.782 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:57180 10 6452 1 2025-09-20 03:21:30.877 00:05:01.337 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:25:44.096 00:00:00.042 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:25:34.944 00:00:10.370 TCP 23.104.0.1:59388 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:25:43.859 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:26:23.039 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:37910 12 10365 1 2025-09-20 03:26:35.356 00:00:10.441 TCP 23.104.0.1:37594 -> 1.101.0.1:3000 15 1926 1 2025-09-20 03:27:23.286 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45982 10 6452 1 2025-09-20 03:27:35.831 00:00:10.347 TCP 23.104.0.1:45016 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:28:23.501 00:00:10.238 TCP 1.101.0.1:3000 -> 22.102.0.1:50338 10 6452 1 2025-09-20 03:28:36.218 00:00:10.364 TCP 23.104.0.1:48616 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:29:23.777 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45706 10 6452 1 2025-09-20 03:29:36.624 00:00:10.326 TCP 23.104.0.1:49966 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:30:23.996 00:00:10.165 TCP 1.101.0.1:3000 -> 22.102.0.1:34334 10 6452 1 2025-09-20 03:26:30.878 00:05:01.341 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:30:43.914 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:30:44.069 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:30:36.983 00:00:10.364 TCP 23.104.0.1:57678 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:31:24.199 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:53834 12 10367 1 2025-09-20 03:27:30.880 00:05:01.336 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:31:37.389 00:00:10.445 TCP 23.104.0.1:56674 -> 1.101.0.1:3000 15 1926 1 2025-09-20 03:32:24.443 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50202 10 6452 1 2025-09-20 03:32:37.873 00:00:10.372 TCP 23.104.0.1:41124 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:33:24.659 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33996 10 6452 1 2025-09-20 03:33:38.282 00:00:10.367 TCP 23.104.0.1:52674 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:34:24.866 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:52926 10 6452 1 2025-09-20 03:34:38.703 00:00:10.369 TCP 23.104.0.1:35044 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:35:25.071 00:00:10.519 TCP 1.101.0.1:3000 -> 22.102.0.1:35210 10 6452 1 2025-09-20 03:35:44.184 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:35:44.168 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:35:39.109 00:00:10.369 TCP 23.104.0.1:58740 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:36:25.632 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:57586 10 6452 1 2025-09-20 03:32:30.878 00:05:01.342 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:36:39.518 00:00:10.371 TCP 23.104.0.1:52426 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:33:30.881 00:05:01.338 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:37:25.810 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:54780 10 6452 1 2025-09-20 03:37:39.929 00:00:10.347 TCP 23.104.0.1:53956 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:38:25.980 00:00:10.786 TCP 1.101.0.1:3000 -> 22.102.0.1:37688 10 6452 1 2025-09-20 03:38:40.308 00:00:10.367 TCP 23.104.0.1:43224 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:39:26.806 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43634 10 6452 1 2025-09-20 03:39:40.713 00:00:10.376 TCP 23.104.0.1:42366 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:40:27.041 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41308 10 6452 1 2025-09-20 03:40:44.700 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:40:44.718 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:40:41.130 00:00:10.365 TCP 23.104.0.1:40904 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:41:27.207 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:35944 10 6452 1 2025-09-20 03:41:41.528 00:00:10.332 TCP 23.104.0.1:36376 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:38:30.882 00:05:01.340 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:42:27.380 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34028 10 6452 1 2025-09-20 03:42:41.900 00:00:10.380 TCP 23.104.0.1:40178 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:39:30.885 00:05:01.335 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:43:27.588 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:54144 10 6452 1 2025-09-20 03:43:42.318 00:00:10.322 TCP 23.104.0.1:39060 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:44:27.813 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48606 10 6452 1 2025-09-20 03:44:42.684 00:00:10.325 TCP 23.104.0.1:47708 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:45:44.406 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:45:28.033 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34784 10 6452 1 2025-09-20 03:45:44.440 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:45:43.060 00:00:10.551 TCP 23.104.0.1:48960 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:46:28.246 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40202 10 6452 1 2025-09-20 03:46:43.652 00:00:10.365 TCP 23.104.0.1:60884 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:47:28.463 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40898 10 6452 1 2025-09-20 03:47:44.062 00:00:10.361 TCP 23.104.0.1:33806 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:44:30.883 00:05:01.340 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:48:28.686 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55174 10 6452 1 2025-09-20 03:48:44.461 00:00:10.360 TCP 23.104.0.1:37056 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:45:30.886 00:05:01.335 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:49:28.910 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37904 10 6452 1 2025-09-20 03:49:44.857 00:00:10.374 TCP 23.104.0.1:41192 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:50:29.126 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39064 10 6452 1 2025-09-20 03:50:44.551 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:50:44.379 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:50:45.268 00:00:10.327 TCP 23.104.0.1:48440 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:51:29.359 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:46460 10 6452 1 2025-09-20 03:51:45.635 00:00:10.363 TCP 23.104.0.1:52886 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:52:29.547 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53748 10 6452 1 2025-09-20 03:52:46.044 00:00:10.361 TCP 23.104.0.1:57144 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:53:29.773 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51880 10 6452 1 2025-09-20 03:53:46.447 00:00:10.366 TCP 23.104.0.1:54720 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:50:30.884 00:05:01.341 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 03:54:29.990 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:45572 10 6452 1 2025-09-20 03:54:46.851 00:00:10.375 TCP 23.104.0.1:43752 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:51:30.887 00:05:01.338 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 03:55:44.562 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 03:55:30.218 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36514 10 6452 1 2025-09-20 03:55:44.653 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 03:55:47.265 00:00:10.362 TCP 23.104.0.1:46496 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:56:30.428 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54344 10 6452 1 2025-09-20 03:56:47.668 00:00:10.377 TCP 23.104.0.1:52450 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:57:30.642 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41838 10 6452 1 2025-09-20 03:57:48.101 00:00:10.394 TCP 23.104.0.1:43662 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:58:30.860 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60342 10 6452 1 Summary: total flows: 163, total bytes: 505507, total packets: 1573, avg bps: 1084, avg pps: 0, avg bpp: 321 Time window: 2025-09-20 02:56:30 - 2025-09-20 03:58:41 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0037s User: 0.0009s Wall: 0.0016s flows/second: 103822.6 Runtime: 0.0016s